Privacy Policy

Last updated: September 6, 2025

Peer Hiring (“Peer Hiring”, “we”, “us”, or “our”) provides tools to create role listings, upload candidate resumes, and score candidates using AI. This Privacy Policy explains what information we collect, how we use it, how we share it, and the choices you have.

Information We Collect

We collect and process the following categories of information:

  • Usage and session data: a pseudonymous session identifier (stored in a cookie) to operate your workspace and associate your roles and candidates with your browser session.
  • Content you provide: role descriptions, prompts, uploaded files (e.g., resumes in PDF/DOCX/IMG), and other inputs needed to generate or score role postings and candidates.
  • Payment information: if you purchase features, payments are processed by Stripe. We receive limited details (e.g., payment status, amount) but not full card numbers.
  • Analytics data: we use services like Google Analytics and Hotjar to understand product usage and improve the experience. These services may collect IP address, device information, and interaction events, subject to their own policies.
  • Log and diagnostic data: server logs and error reports to maintain reliability and security.

How We Use Information

  • Provide and operate the Service (processing uploads, generating roles, scoring candidates).
  • Secure, maintain, debug, and improve the Service and underlying infrastructure.
  • Process transactions, prevent fraud, and provide receipts or confirmations.
  • Analyze product usage for performance, quality, and feature development.
  • Comply with legal obligations and enforce our terms and policies.

AI and Third‑Party Processing

To provide AI features, we may send relevant content (such as portions of role descriptions or resume text) to third‑party AI providers (e.g., OpenAI) for processing. We also use payment and analytics providers as noted below. These providers act as independent controllers or processors under their own terms and privacy policies. Do not upload confidential or sensitive personal data that you do not have a right to process.

  • OpenAI: used for role generation, candidate analysis, and name extraction. See OpenAI’s documentation and privacy commitments for details on data handling.
  • Stripe: used to process payments. Stripe may collect identifiers and payment instrument details directly from you. We receive confirmation of payment status and related metadata.
  • Google Analytics: used to measure usage. IP addresses may be processed and anonymized according to configuration. You can opt out using Google’s opt‑out mechanisms.
  • Hotjar: used for product analytics (e.g., heatmaps, session insights) to improve UX.

Cookies and Similar Technologies

We use cookies and similar technologies to operate the Service (e.g., a pseudonymous session cookie), remember preferences, and perform analytics. You can control cookies through your browser settings. Disabling essential cookies may impair functionality.

Legal Bases (EEA/UK)

Where applicable, we rely on the following legal bases:

  • Contract: to provide requested features and services.
  • Legitimate interests: to secure, maintain, and improve the Service.
  • Consent: where required for analytics or certain optional features.
  • Legal obligations: to comply with applicable law and enforce rights.

Data Sharing

We share information with service providers who help us operate the Service (e.g., hosting, AI processing, analytics, and payments). We may also share information to comply with law or protect rights, property, or safety. We do not sell personal information.

International Transfers

Your information may be processed in countries other than your own. Where required, we take steps to ensure appropriate safeguards for such transfers consistent with applicable law.

Data Retention

We retain information for as long as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce agreements. You can delete roles and candidates in the product; related files and derived data are removed or scheduled for deletion accordingly.

Your Rights

Depending on your location, you may have rights such as access, rectification, deletion, portability, restriction, objection, and withdrawal of consent. You may also have the right to lodge a complaint with a supervisory authority. To exercise rights, contact us using the details below.

California Privacy (CCPA/CPRA)

California residents have the right to know, delete, correct, and opt out of certain data practices. We do not sell personal information. We share limited data with service providers to operate the Service. You may designate an authorized agent to submit requests on your behalf.

Security

We implement reasonable technical and organizational measures to help protect information. However, no method of transmission or storage is fully secure. Please use the Service responsibly and avoid uploading sensitive personal data unless necessary.

Children’s Privacy

The Service is not directed to children under the age of 16 and we do not knowingly collect personal information from them.

Changes to This Policy

We may update this Privacy Policy from time to time. We will post the updated policy here and update the “Last updated” date. Material changes may be communicated by additional notice.

Contact Us

If you have questions or requests regarding this policy, please contact us at
Email: privacy@peerdigital.se